Broadcast storm between HA routers.
-
We have been having intermittent broadcast storms and I finally tracked down the source. What is odd is that it is happening in a VLAN that is wan only with no dhcp and no occupied ports other than the firewalls and the switch where the internet comes in. What I ended up seeing on VLAN 881 (WAN) was a dropbox lansync broadcast packet bouncing back and forth between both firewalls. The other thing to note is that the ip address of origin 192.168.1.170 is not a subnet that exists in our deployment. I'm unsure where the packet came from but also why the firewalls keep forwarding the broadcast traffic back and forth. Is there a setting I could configure to prevent this? Our core switch is a mikrotik 24port 10Gb with routeros v7.packetcapture-ix0.881-20240330093117.pcap